Regulatory TREND. What do I need to know about Active Cyber Defense?

Active Cyber Defense uses private sector cyber bounty hunters and hackers  to protect critical infrastructure.

Who is behind this concept?

  • An Atlantic Council report,
  • by, Frank Kramer, Assistant Secretary for International Security Affairs for the Clinton administration
  • and by, Bob Butler, Deputy Assistant Secretary for Space and Cyber in the Obama administration

How would this private sector system work?  the private sector hackser would be deputized  “certified active defenders” to assist…

Regulatory TREND. Anatomy of the Cybersecurity Solarium Commission

The U.S. Cybersecurity Solarium Commission is taking inspiration from the 1950s era commission that studying nuclear strategy.

The 14 member Cybersecurity Solarium Commission will be comprised of:

  • 4 current lawmakers
  • director or deputy director of National Intelligence
  • drector or deputy director of Defense
  • director or deputy director of the FBI
  • director or deputy director of Homeland Security
  • academics
  • industry representatives

Strategies to develop:

Local TREND. City Seeks to Ban Facial Recognition Software.

The city: San Francisco

The proposal: 

  • new regulations on the city’s process for acquiring surveillance equipment
  •  total ban on municipal use of facial recognition software

How many other cities have done this? none

Opponents: law enforcement

The policy goal: ““The propensity for facial recognition technology to endanger civil rights and civil liberties substantially outweighs its purported benefits,”

Government Technology | Will San Francisco Ban Facial Recognition Technology?

New hacking target: Construction Equipment

Anatomy of a white hacker on construction equipment:

  • Accessed 14 construction locations
  • hacked into devices that not only controlled:
    • cranes
    • excavators
    • scrapers
    • other large machinery

The solution: Move equipment away from “esoteric custom protocols” and to “modern, standardized tech” that can be easily upgraded for security

Forbes | Exclusive: Hackers Take Control Of Giant Construction Cranes

Lege TREND. State Cyber Law Enforcement and Protections. Anatomy of a Bill + Benefits to Cities.

HB 747 (2018 | OH) will estalish the Ohio Cyber Reserve to protect Ohioans from cyber terrorists.

Authors tout that the Reserve will also help cities with cyber inititatives.

How many aspects of cybersecurity will the reserve have its fingers in?

  • election security
  • local governments
  • critical infrastructure
  • businesses

Like the national guard, the reserve will act by Governor action.

Fox 8 | Ohio House passes bill to establish cybersecurity team

Government Technology | Ohio House Passes…

Lege TREND. Define Cyber Events like Hurricanes or Terrorism. Read the bill.

The Nevada Legislature will consider SB69 (2019 | NV) which is:

  • backed by the Division of Public Safety’s Division of Emergency Management
  • defines significant cyber events like invasions, disasters and riots
  • require schools, cities, counties and resorts to have emergency response plans
  • designates October as “Cybersecurity Awareness Month”
  • allows the governor to call on the national guard during a significant cyber event

Nevada Independent | New pre-filed bills take aim at education,…

New Report. New Cybersecurity Risk. Ports. 4 Key Points.

The report is by: maritime law firm Jones Walker LLP

What did the report find?

  • Hacks are happening at ports. 80% of large maritime industry companies (400+ employees) report cyber attack in the last year
  • Unprepared. 64% say their own companies are unprepared to handle the far-reaching business, financial, regulatory and public relations consequences of a data breach
    • 6% of small companies are prepared for a cyberattack (1-49 employees)
    • 19% of midsize companies are prepared (49-400…

Business TREND. Cyber version of the Red Cross? WHAT. HOW. WHY.

What is being proposed? an international organization modeled after the International Committee of the Red Cross that would help in cyber emergencies

How would this work? provide assistance and relief to vulnerable citizens and enterprises affected by serious cyberattacks

Why? Its based on work by tech companies including:

  • November 2017 a UN speech on cyber security y Brad Smith, Microsoft´s President and Chief Legal Officer
  • Spring 2018 Microsoft initiated the Cybersecurity Tech Accord
  • Fall…

Utility + Ransomware= Policy Makers Need to Know. Hello, Hurricane Legislation.

Which utility was hit with ransomware? Jacksonville, North Carolina-based Onslow Water and Sewer Authority

when was the ransomware triggered? middle of the night Saturday,  “specifically targeted” the utility in the wake of Hurricane Florence

what was the impact of the ransomware?

  • operating with limited computer capabilities
  • overwheliming IT support
  • accounts are being managed manually
  • not interrupt water and wastewater service

CyberScoop | Ransomware hits computer networks of North…